Documentation for Axxon One 1.0.

Previous page Configuring user permissions  Connecting to an LDAP catalog Next page

A role is intended for assigning a group of users individual rights and permissions for administration, management and/or monitoring of individual components of Axxon One.

To create a new role, do the following:

  1. At the end of the list of the system roles, click the Create link. The new role will be added to the system, with its properties displayed on the right side.
  2. Configure the access permissions.

    ParametersAccess permissionDescription
    Basic
    NameEnter a name for the role (1)
    Map controlSelect the access level to the maps for users with the current role (2)
    Map managementView onlyYou can only view maps

    View/move/scaleYou can views, move, and scale maps

    Full accessAll options available
    Other
    Archive depth viewing restriction

    If you need to limit the access of users of a given role to all system archives, you can specify the archive depth limit in hours (3). If no limit is set, users may view all video recordings

    Access to Functions 

    Set access permissions to Axxon One functions (4)

    Access to Search in archive mode 

    Yes

    Archive search (see Video surveillance in archive search mode)

    No
    Adding camera to layout in monitoring modeYes 

    Adding a camera to a layout in live video mode (see Adding cameras to cells)

    No
    Adding/editing presetsYes

    Adding and editing presets for PTZ cameras (see Selecting a preset)

    No
    Alarms processing

    Alarms management (see Video surveillance in alarm management mode)

    No accessUsers have no access to alarm videos
    View onlyUsers can view alarm videos, but they can't evaluate alarms
    Full accessUsers can view alarm videos and evaluate alarms
    Allow comments in archiveCreating comments in the archive (see Operator comments) and protected records (see Protecting video footage from FIFO overwriting)
    No accessNo comments allowed
    CreateAdd comments to the archive
    Create/ProtectAdd comments to the archive, create protected records
    Create/Protect/ Edit/DeleteAdd comments to the archive, create and edit protected records
    Allow to delete recordsYes

    Removing video recordings from the archive (see Delete a part of an archive)

    No
    Allow unprotected exportYes

    Exporting frames and video recordings without password protection (see Frame export, Standard video recordings export). Set No to require setting a password when exporting (see Exporting frames and video recordings)

    No
    ExportYes

    Exporting frames and video recordings (see Exporting frames and video recordings)

    No
    Layout editingYes

    Editing layouts (see Editing layouts)

    No
    Minimize to taskbarYes

    Minimizing the Client to the tray (see Interface of the Axxon One Software Package)

    No
    Operating domainYes

    Managing Axxon domain (see Operations with domains)

    No
    Permissions to access via WebUIYes

    Access to the Web server (see Working with Axxon One Through the Web-Client)

    No
    Realtime recognition setup YesFaces and license plates recognition in real-time (see Configuring real-time face recognition, Configuring real-time vehicle license plate recognition)
    No
    Show captionsYes

    Displaying captions (see Viewing titles from POS terminals)

    No
    Show facesYes

    Showing faces (see Masking faces)

    No
    System logYes

    Viewing the system log (see The System Log)

    No
    Unlock camera menu buttonYes

    Context menu of a video camera (see Viewing Tile Context Menu)

    No
    View masked videoYes

    Viewing masked video (see Setting up privacy masking in Video Footage, Specific settings for People masking detection tool)

    No
    Access to Settings
    Archive settingsYes

    Configure the access permissions to the Settings tabs and to the system error messages (5).

    Attention!

    If you set the User Permission settings parameter to Device access rights only, all users of the given role will have the rights to change only the access rights to the connected devices.

    Note

    Error messages are displayed in real-time in the Layouts interface.



    No
    Detection settingsYes
    No
    Device settingsYes
    No
    Options settingsYes
    No
    Programming settingsYes
    No
    Show error messagesYes
    No
    User Permission settingsYes
    No
    Access to Tabs
    Layouts tabYes

    Set access permissions to the Layouts interface in Axxon One (6). This parameter applies to both the Client and the Web Client (see Web-Client's GUI)

    No
    Supervisor confirmationSet the parameters to apply the four-eye principle (7)
    Supervisor for acccess to export

    If the administrator has to confirm the launch of export for users of this role (see Exporting frames and video recordings), select the corresponding role in the list

    Supervisor for authorization in client

    If the administrator has to confirm the login of users of this role (see Starting an Axxon One Client), select the corresponding role in the list

    Time schedule management
    Time schedule

    If you need to grant the users in this role permissions only for a certain period of time, select a time schedule (8) from the list. These users will not be able to use their permissions outside of the selected time schedule

    Video walls management
    ServerYes

    Configure the rights to manage the connected Clients' monitors by setting permissions for each Server on Axxon domain (9). A user who has management permissions for the monitors of a particular Server can manage monitors of any Client connected to that Server

    No
  3. Set the access permissions to hardware and archives of an Axxon domain (10).

    Device

    Access permission

    Description

    Video camera





    No access

    You cannot access the device

    Archive only

    You can only view video footage in archive

    Live in Armed mode

    You can view video from the camera only when the camera is armed

    Live

    You can live video from the camera. Other functions and device configuration are not available

    Live/Archive

    You can view live and recorded video from the camera. You cannot arm/disarm/configure the camera

    Live/Archive/Control

    All functions available. You cannot configure the device

    Live/Archive/Control/Configure

    All functions and settings available

    Microphone



    No access

    You cannot listen to live sound from the video camera. You cannot listen to sound recordings from the archive

    Live Audio

    You can listen to live sound from the video camera (the microphone should be turned on). You cannot listen to sound recordings from the archive

    Live Audio and Archive

    All functions are available

    PTZ


    No access

    You cannot control the PTZ device

    Minimum level

    You control the PTZ device with the corresponding priority (see Controlling a PTZ Camera)

    Low level
    Medium level
    High level
    Maximum level
    ArchiveNo accessAccess is not provided to this archive
    Full accessArchive is available for all function

    You can configure group permissions to access devices and archives of a particular Server. To do so, select an access level for the Server object. Depending on the selected level, particular access levels are automatically configured for the devices and archives of the relevant Server:

    Server access level

    Device/archive

    Device/archive access level

    Custom

    -

    Access levels for devices and archives are set manually

    No access

    -

    No access to devices and archives

    Archive OnlyVideo cameraArchive only
    MicrophoneLive Audio and Archive
    PTZMedium level
    ArchiveFull access

    Live in Armed Mode

    Video camera

    You can view armed cameras

    Microphone

    Live Audio.

    PTZ

    Medium level.

    Archive

    No access

    Live

    Video camera

    You can view live video

    Microphone

    Live Audio

    PTZ

    Medium level

    Archive

    No access

    Live/Archive

    Video camera

    You can view live and recorded video

    Microphone

    Live Audio and Archive

    PTZ

    Medium level

    Archive

    Full access

    Live/Archive/Control




    Video camera

    All functions. Configuration not available

    Microphone

    Live Audio and Archive

    PTZ

    Medium level

    Archive

    Full access

    Live/Archive/Control/ConfigureVideo camera All functions + configuration available
    Microphone Live Audio and Archive
    PTZ Maximum level
    Archive Full access
  4. Select the appropriate access level to set the possibility to manually run all or some macros (see Configuring macros) from the Layouts interface (11).

    Attention!

    By default, created macros are available only to users from the admin group.

    Users outside the admin group can create macros, if they have the permissions to create them. They cannot use them until they have the permissions to use them.

    Macros access levelMacro typeAccess permissionDescription
    No access

    Automatic rulesNo

    No access to macros

    Event rules
    Cycle rules
    Custom




    Automatic rulesYesAccess permission for macros is set manually





    No
    Event rulesYes
    No
    Cycle rulesYes
    No
    Full accessAutomatic rulesYesFull access to macros
    Event rules
    Cycle rules
  5. Click the Apply button to save the role.

The new role has been created.

You can copy a role. To do it, do the following:

  1. Select the role to copy.
  2. Click the Create button.

A new role will be created with the same parameters as the selected role.

Note

To create an empty user role with no parameters specified, select the Roles common group, and click the Create button.

To delete a role, do the following:

  1. Select the role to delete.

  2. Click the Delete button.


    Note

    You cannot delete a role if the user who is logged in belongs to that role.

  3. Click the Apply button to save the changes.

The role has been deleted. All users who belong to this role will also be deleted.

  • No labels